As outlined in The National Law Review, HIPAA requires entities to report breaches affecting fewer than 500 individuals no later than 60 days after the end of the calendar year. This year, that date falls on March 1. Additionally, covered entities must notify individuals affected by the small breach no later than 60 days after the breach, according to a Hall Render blog post.
Covered entities can submit a report for each breach via this online portal.
More articles on health IT:
5 things to know about Amazon’s cloud service outage
How Cleveland Clinic deploys an effective telehealth service
1B records compromised in 2016, report finds
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.